Lists (1)
Sort Name ascending (A-Z)
Starred repositories
Fast and customizable subdomain wordlist generator using DSL
Check for LDAP protections regarding the relay of NTLM authentication
Small and highly portable detection tests based on MITRE's ATT&CK.
The world's most popular free, open source ad serving system. You can download the latest release at:
this repo contains all types of api wordlists for api testing..
All of my CTF(THM, HTB, pentesterlab, vulnhub etc.) wirte-ups & notes
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.
Introductory guide on the configuration and subsequent exploitation of Active Directory Certificate Services with Certipy. Based on the white paper Certified Pre-Owned.
Tool for Active Directory Certificate Services enumeration and abuse
☁️ Nextcloud server, a safe home for all your data
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…
A Python 3 module and script that uses AES256-CBC to encrypt/decrypt files and streams in AES Crypt file format (version 2).
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
This is a curated list of mobile based CTFs, write-ups and vulnerable apps. Most of them are android based due to the popularity of the platform.
A big list of Android Hackerone disclosed reports and other resources.
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
The Triton Inference Server provides an optimized cloud and edge inferencing solution.
Core engine for the Brave browser for mobile and desktop. For issues https://github.com/brave/brave-browser/issues
Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3
Protection against Model Serialization Attacks